Vulnerability CVE-2023-4547


Published: 2023-08-26

Description:
A vulnerability was found in SPA-Cart eCommerce CMS 1.9.0.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /search. The manipulation of the argument filter[brandid]/filter[price] leads to cross site scripting. The attack may be launched remotely. VDB-238058 is the identifier assigned to this vulnerability.

See advisories in our WLB2 database:
Topic
Author
Date
Low
SPA-Cart eCommerce CMS 1.9.0.3 - Reflected XSS
CraCkEr
26.08.2023

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://vuldb.com/?id.238058
https://vuldb.com/?ctiid.238058

Copyright 2024, cxsecurity.com

 

Back to Top